CVE-2022-2303 - log back

CVE-2022-2303 edited at 28 Jul 2022 18:40:09
Severity
- Low
+ Medium
CVE-2022-2303 edited at 28 Jul 2022 18:37:15
Severity
- Unknown
+ Low
Remote
- Unknown
+ Remote
Description
+ It may be possible for group members to bypass 2FA enforcement enabled at the group level by using Resource Owner Password Credentials grant to obtain an access token without using 2FA
References
Notes
CVE-2022-2303 created at 28 Jul 2022 16:57:40